Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-32658 Unquoted Search Path or Element vulnerability in Intel Hdmi Firmware
Unquoted search path in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
7.3
2023-11-14 CVE-2023-32660 Uncontrolled Search Path Element vulnerability in Intel Thunderbolt 3 Controller Firmware 27/38
Uncontrolled search path in some Intel(R) NUC Kit NUC6i7KYK Thunderbolt(TM) 3 Firmware Update Tool installation software before version 46 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3
2023-11-14 CVE-2023-32661 Improper Authentication vulnerability in Intel Realtek SD Card Reader Driver
Improper authentication in some Intel(R) NUC Kits NUC7PJYH and NUC7CJYH Realtek* SD Card Reader Driver installation software before version 10.0.19041.29098 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-287
7.8
2023-11-14 CVE-2023-33874 Uncontrolled Search Path Element vulnerability in Intel HID Event Filter Driver
Uncontrolled search path in some Intel(R) NUC 12 Pro Kits & Mini PCs - NUC12WS Intel(R) HID Event Filter Driver installation software before version 2.2.2.1 for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3
2023-11-14 CVE-2023-33878 Path Traversal vulnerability in Intel Audio Install Package
Path transversal in some Intel(R) NUC P14E Laptop Element Audio Install Package software before version 156 for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-22
7.8
2023-11-14 CVE-2023-34314 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Simics Simulator
Insecure inherited permissions in some Intel(R) Simics Simulator software before version 1.7.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2023-11-14 CVE-2023-34350 Uncontrolled Search Path Element vulnerability in Intel Extreme Tuning Utility 6.4.1.21/6.5.1.360/6.5.3.25
Uncontrolled search path element in some Intel(R) XTU software before version 7.12.0.15 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2023-11-14 CVE-2023-34430 Uncontrolled Search Path Element vulnerability in Intel Battery Life Diagnostic Tool 1.0.7/2.2.0
Uncontrolled search path in some Intel Battery Life Diagnostic Tool software before version 2.2.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2023-11-14 CVE-2023-34997 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Server Configuration Utility 16.0.7/16.0.8
Insecure inherited permissions in the installer for some Intel Server Configuration Utility software before version 16.0.9 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2023-11-14 CVE-2023-36860 Improper Input Validation vulnerability in Intel Unison Software 20.14.2.3053/20.14.4244
Improper input validation for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-20
8.8